CVE-2018-19432: Null Pointer Dereference
Published Nov 22, 2018
·Updated
An issue was discovered in libsndfile 1.0.28. There is a NULL pointer dereference in the function sfwriteint in sndfile.c, which will lead to a denial of service.
Affected Software
3 affected componentsFixes available
Libsndfile Project Libsndfile=1.0.28
Debian Debian Linux=8.0
debian/libsndfile
1.0.31-21.0.31-2+deb11u21.2.0-1+deb12u11.2.2-21.2.2-4
Remediation
Patch Available
Event History
Nov 22, 2018
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:57 PM
Description
Feb 19, 2026
Data Sourced
via Ubuntu·08:57 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Debian·08:58 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-19432?
CVE-2018-19432 has a severity rating that indicates it can lead to denial of service due to a NULL pointer dereference in libsndfile.
2
How do I fix CVE-2018-19432?
To fix CVE-2018-19432, upgrade libsndfile to versions 1.0.31-2, 1.2.0-1, 1.2.2-1, or 1.2.2-2.
3
Which software is affected by CVE-2018-19432?
CVE-2018-19432 affects libsndfile version 1.0.28 and possibly earlier versions.
4
What type of issue is CVE-2018-19432?
CVE-2018-19432 is a NULL pointer dereference issue that may cause a denial of service.
5
Where can I find more information about CVE-2018-19432?
Details regarding CVE-2018-19432 can be typically found in security advisories and issue trackers related to libsndfile.